Executive Summary

Informations
Name CVE-1999-0073 First vendor Publication 1995-10-13
Vendor Cve Last vendor Modification 2022-08-17

Security-Database Scoring CVSS v3

Cvss vector : N/A
Overall CVSS Score NA
Base Score NA Environmental Score NA
impact SubScore NA Temporal Score NA
Exploitabality Sub Score NA
 
Calculate full CVSS 3.0 Vectors scores

Security-Database Scoring CVSS v2

Cvss vector : (AV:N/AC:L/Au:N/C:C/I:C/A:C)
Cvss Base Score 10 Attack Range Network
Cvss Impact Score 10 Attack Complexity Low
Cvss Expoit Score 10 Authentication None Required
Calculate full CVSS 2.0 Vectors scores

Detail

Telnet allows a remote client to specify environment variables including LD_LIBRARY_PATH, allowing an attacker to bypass the normal system libraries and gain root access.

Original Source

Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-1999-0073

CAPEC : Common Attack Pattern Enumeration & Classification

Id Name
CAPEC-21 Exploitation of Session Variables, Resource IDs and other Trusted Credentials
CAPEC-31 Accessing/Intercepting/Modifying HTTP Cookies
CAPEC-167 Lifting Sensitive Data from the Client

CWE : Common Weakness Enumeration

% Id Name

CPE : Common Platform Enumeration

TypeDescriptionCount
Os 5
Os 2
Os 13

Open Source Vulnerability Database (OSVDB)

Id Description
1008 Multiple Vendor telnetd LD_LIBRARY_PATH Environment Variable Privilege Escala...

Snort® IPS/IDS

Date Description
2014-01-10 ld_library_path
RuleID : 712-community - Revision : 16 - Type : PROTOCOL-TELNET
2014-01-10 ld_library_path
RuleID : 712 - Revision : 16 - Type : PROTOCOL-TELNET

Sources (Detail)

Source Url
MISC https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0073

Alert History

If you want to see full details history, please login or register.
0
1
2
3
4
5
Date Informations
2022-08-17 13:27:55
  • Multiple Updates
2021-05-04 12:00:52
  • Multiple Updates
2021-04-22 01:01:05
  • Multiple Updates
2020-05-23 00:14:04
  • Multiple Updates
2014-01-19 21:20:34
  • Multiple Updates
2013-05-11 11:55:39
  • Multiple Updates